[TLS] Changes to draft-ietf-tls-dtls-heartbeat resulting from IESG review

Joe Salowey <jsalowey@cisco.com> Mon, 05 December 2011 06:13 UTC

Return-Path: <jsalowey@cisco.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BAA9321F8508 for <tls@ietfa.amsl.com>; Sun, 4 Dec 2011 22:13:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.599
X-Spam-Level:
X-Spam-Status: No, score=-106.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JfN1HCrgqjss for <tls@ietfa.amsl.com>; Sun, 4 Dec 2011 22:13:37 -0800 (PST)
Received: from mtv-iport-2.cisco.com (mtv-iport-2.cisco.com [173.36.130.13]) by ietfa.amsl.com (Postfix) with ESMTP id 1FEF421F8491 for <tls@ietf.org>; Sun, 4 Dec 2011 22:13:37 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=jsalowey@cisco.com; l=660; q=dns/txt; s=iport; t=1323065617; x=1324275217; h=from:content-transfer-encoding:subject:date:message-id: to:mime-version; bh=qJE9fqJEIv9IQtyY2JnQnXcOXLjw23JSpTovGtF0Wn0=; b=ca8zKKwv7JDzrkLXweSxpug2XqsDPMVKkbpDWPRbagdPb36DF5X7hBPq tWTl8Z9CxVRz0/CMAKrNJ8w3IzfP8pzdfbLEYuFOcpO4uv4QHs6w3xy5p mnvRqWA/Pi0dksEUYLI+islzyeDeIuE1IscT/Dm7vDKxEy/AlS2fHtz2q w=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AvwEANRf3E6rRDoG/2dsb2JhbABEqjiBBYILASeCGRmHbZVngSYBnWWIDIIyYwSILYwvhUeMcg
X-IronPort-AV: E=Sophos;i="4.71,297,1320624000"; d="scan'208";a="17720801"
Received: from mtv-core-1.cisco.com ([171.68.58.6]) by mtv-iport-2.cisco.com with ESMTP; 05 Dec 2011 06:13:36 +0000
Received: from [10.33.251.93] ([10.33.251.93]) by mtv-core-1.cisco.com (8.14.3/8.14.3) with ESMTP id pB56Da1I011537 for <tls@ietf.org>; Mon, 5 Dec 2011 06:13:36 GMT
From: Joe Salowey <jsalowey@cisco.com>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Date: Sun, 04 Dec 2011 22:13:47 -0800
Message-Id: <6D345690-D3F1-4A65-8314-D9A7E47D857E@cisco.com>
To: tls@ietf.org
Mime-Version: 1.0 (Apple Message framework v1084)
X-Mailer: Apple Mail (2.1084)
Subject: [TLS] Changes to draft-ietf-tls-dtls-heartbeat resulting from IESG review
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Dec 2011 06:13:37 -0000

Some changes were made to the document as part of IESG review.  The revised document and diffs can be found here:

http://www.ietf.org/internet-drafts/draft-ietf-tls-dtls-heartbeat-04.txt

http://tools.ietf.org/rfcdiff?url2=draft-ietf-tls-dtls-heartbeat-04

One of the requested changes was to randomize to the data in the heartbeat message to attempt to head of any issues occurring from weak or flawed ciphers.   Since the change was relatively simple, the document was modified even though modern ciphers should not have a problem.  Flaws may be discovered in one of the many cipher suites in the future.  


Cheers,

Joe